SOC & SIEM Specialist (H/F)
Core
Define and govern SOC/SIEM detection and monitoring capabilities to ensure effective security event detection, analysis, escalation, and NIS2 compliance.
Role type
Senior SOC & SIEM Governance Specialist
Builds
Governance frameworks, detection use cases, and compliance evidence for security operations
Domain
Cybersecurity, Security Operations, Regulatory Compliance (NIS2)
Required skills
SOC governance, SIEM strategy, log management, detection engineering, incident response processes, vendor management, NIS2 framework, ISO 27001, MITRE ATT&CK, KPI/KRI definition
Preferred skills
XDR/SOAR experience, Splunk expertise, CISSP/CISM/GIAC certifications, MITRE ATT&CK training
Technologies
Splunk, XDR, SOAR, NIS2 Framework, ISO 27001
Responsibilities
Define SOC governance framework and minimum monitoring requirements; Govern SIEM strategy and security log collection; Define logging requirements for critical systems; Establish and track detection use cases; Monitor detection coverage, MTTD, MTTA, alert volume, and false positive rates; Challenge SOC/MSSP provider performance; Govern escalation processes to Incident Response; Participate in cyber defense exercises; Ensure SOC alignment with NIS2 requirements; Track gaps and remediation plans; Contribute to audits and compliance evidence; Define and maintain security policies and procedures; Report regularly to CISO; Coordinate with IT, Infrastructure, Cloud, Engineering, Risk, Legal, Compliance, and Internal Audit.
Seniority
Senior, hands-on IC with governance focus